LinkedIn confirms breach, urges members to change compromised passwords

06.06.2012
LinkedIn today confirmed reports that some of its users' passwords have been compromised.

Early on Tuesday reports surfaced that approximately 6.5 million LinkedIn passwords had been compromised and posted online. After initially not admitting to any breach, the company announced later in the day that some of the passwords are linked to user accounts. "We can confirm that some of the passwords that were compromised correspond to LinkedIn accounts," LinkedIn Director Dave Silveira wrote in a . "We are continuing to investigate this situation ..."

EARLIER:

MORE HACKING:

LinkedIn has automatically invalidated the passwords of impacted users and the company says emails will be sent to users whose passwords are compromised notifying them of the situation. The company warns users to not update passwords via links sent in an email.

In addition, LinkedIn says it has "just recently" put into place additional security features for its passwords, including hashing and salting all of the company's password databases. Salting is a process that adds user-specific information to encrypted passwords, making them more difficult to unencrypt.